Hi, all - 

There's been a couple mentions of Zieglar's "Linux Firewalls" on this list
recently, and I think that maybe I've found a bug in his scripts relating
to the relationship of his mangle policies and the loopback interface.

Both a script that I wrote (very similar to his standalone example) and the 
standalone script itself (downloaded from the www.linux-firewall-tools.com
site) break all communication via the loopback interface. For example, `ping
localhost` and `lynx localhost` both fail. Only when I change the mangle 
policies to "ACCEPT" from "DROP" can I communicate with localhost.

I don't claim to understand this, which is why I'm looking for other people's
experiences with the scripts before I file a bug report with Newriders.
However, looking over the other scripts provided, he sets the mangle policies
to "DROP" and never uses the mangle table at all, so I imagine that there
would be a similar problem with his optimized and gateway scripts as well.

A few questions:

1) Have any of you had similar issues? If you have...
2) Why is the mangle table affecting the loopback interface?
3) What is an appropriate mangle rule to rectify the problem?

I'd appreciate hearing from any of you who have thoughts on the subject. This
may or may not be appropriate for the list - if you think it's not sufficiently
Red Hat related, please reply privately.

Thanks - Jeff
-- 



_______________________________________________
Redhat-list mailing list
[EMAIL PROTECTED]
https://listman.redhat.com/mailman/listinfo/redhat-list

Reply via email to